Configuring SSL certificate to website ISPConfig 3

I read ISPConfig 3 manual (5.4 How Do I Create An SSL Web Site?) and it works just for a Self-signed certificate and presents into my webclient browser that certificate was issued by "localhost.localdomain".

I follwed instructions to save a trusted certificate, but it does not work for me.

Can you help me to use this trusted certificate? Is there any other conf that I need to do into Apache or ISPConfig to solve this issue?

Please post the exact error message that you got. Depending on the ssl authority that you used to sign the cert, it might be nescessary to add a chain certificate in the additional certs field. You should have received informations about that from the company where you bought the ssl certificate.

makensy13:
I did it (copied SSL request generated by ISPConfig and generated SSL certificate in http://www.cacert.org/) after that I pasted SSL certificate genereted by CACert into SSL certificate field in ISPConfig.

till:
I copied and pasted "Root Certificate (PEM Format)" and "Intermediate Certificate (PEM Format)" from http://www.cacert.org/index.php?id=3 into SSL bundle field and saved it.
Is it correct?

Into ISPConfig I not see any error, just when a user access the SSL site/url and certificate error (CA Root untrusted etc) is presented by web browser.
I know that it is ocurring because the root/certificate is showed as "localhost.localdomain" but I can't solve/configure it to use root certificate from CACert instead.

Is there any tip to troubleshoot my configuration to be sure I am configuring in the right way?

makensy13:
I generated the key (SSL request) correctly and submited to a trusted authority (CACert). After that I pasted it into SSL Certificate filed.

till:
I am not receiveing any error into ISPConfig 3, just when a user access this https site where web browser present a certificate error (root and intermediate) shown as it was issued by "localhost.localdomain" (that I know its incorrect).

I copied and pasted root and intermediate certificates from CACert (Root Certificate_PEM_Format and Intermediate Certificate_PEM_Format from http://www.cacert.org/index.php?id=3) into SSL bundle (ISPConfig) field, but even that the error continue to occur.

--> How can I troubleshoot my configuration to certify that I am doing the correct configuration?

makensy13:
I generated the key (SSL request) correctly and submited to a trusted authority (CACert). After that I pasted it into SSL Certificate filed.

till:
I am not receiveing any error into ISPConfig 3, just when a user access this https site where web browser present a certificate error (root and intermediate) shown as it was issued by "localhost.localdomain" (that I know its incorrect).

I copied and pasted root and intermediate certificates from CACert (Root Certificate_PEM_Format and Intermediate Certificate_PEM_Format from http://www.cacert.org/index.php?id=3) into SSL bundle (ISPConfig) field, but even that the error continue to occur.

How can I troubleshoot my configuration to certify that I am doing the correct configuration?

till:
I am not receiveing any error into ISPConfig 3, just when a user access this https site where web browser present a certificate error (root and intermediate) shown as it was issued by "localhost.localdomain" (that I know its incorrect).

I copied and pasted root and intermediate certificates from CACert (Root Certificate_PEM_Format and Intermediate Certificate_PEM_Format from http://www.cacert.org/index.php?id=3) into SSL bundle (ISPConfig) field, but even that the error continue to occur.

How can I troubleshoot my configuration to certify that I am doing the correct configuration?

till:
I am not receiveing any error into ISPConfig 3, just when a user access this https site where web browser present a certificate error (root and intermediate) shown as it was issued by "localhost.localdomain" (that I know its incorrect).

I copied and pasted root and intermediate certificates from CACert (Root Certificate_PEM_Format and Intermediate Certificate_PEM_Format from http://www.cacert.org/index.php?id=3) into SSL bundle (ISPConfig) field, but even that the error continue to occur.

How can I troubleshoot my configuration to certify that I am doing the correct configuration?

I defined an exclusive IP address and reviewed that other websites were not using the same IP and all worked fine.

In my case, as I was using a private IP address to ispconfig server (my firewall redirect our public IPs to internal servers - NAT) and I had to add an additional private IP to this ispconfig server and define it to be used exclusively to the SSL website.
In the beginning I was configuring my SSL website to use the public IP address, but I realized that I needed to configure it with the private IP address and not with that public one.

i have got ispconfig 3.4.5 latest version running, i have setup a few websites

none of them use SSL at the moment, but as i have seen the feature in the manual and also available in my control panel i have decided to make some testing

i have selected the option ssl whilst adding the new website, and also went to the ssl config page and have filled out all information , estate, country, address, deparment etc, afterall i have selected option Create ssl and pressed save.

so far so good i can also navigate via FTP in to the new website folder and i can see the ssl certificates etc.

on my mozilla firefox, as i know its not mozilla firefox as i have configured ISPPanel webif to use https and it works fine , so as other sites also with https.

but on my newly site created for testing it comes up the following message

SSL received a registration that exceede the max lenght size permitted.

(error code: ssl_error_rx_record_too_long)

Does anyone have ideas of what i am doing wrong ?? also do i need to edit something in the ETC/apache2/sites enabled config for my new site?
if so how shall i do it in order to get the new site working ok with ssl?

Any help will be appreciated lads, and sorry for any newby kind of question as i have been just running isp litle under 6months so still learning as it goes by.

P.S - I have tested opening the new site withou ssl and it opens ok http://xxx

i have selected the option ssl whilst adding the new website, and also went to the ssl config page and have filled out all information , estate, country, address, deparment etc, afterall i have selected option Create ssl and pressed save.

Click to expand...

What exactly did you fill in? Maybe you put something invalid there which resulted in an invalid cert.